Security Engineer
You will play a key role in defining and improving our cloud security posture and collaborate across teams to ensure that operations are secure, compliant, and aligned with regulatory and industry best practices such as SOC2. You'll leverage your cloud security expertise to design and harden secure infrastructure, automate controls, and help shape the company's information security governance program.
Responsibilities
- Design, implement, and improve secure cloud-native architectures and CI/CD pipelines
- Identify risks, enforce best practices, and harden systems across the technology stack
- Automate security controls and educate developers for future-proofing against vulnerabilities
- Design and evolve information security governance and compliance program through policies, standards, procedures, and awareness
- Work closely with engineering, infrastructure, and product teams to align controls with business objectives and technical realities
Requirements
- 5+ years of experience in a security engineering role
- Mastery of cloud infrastructure, particularly AWS
- Prior experience focusing on infrastructure security and Kubernetes
- Familiarity with secret management tools like Vault or KMS
- Strong understanding of core information security concepts and major regulatory frameworks/standards (e.g. SOC2, ISO 27001, NIST CSF)
- Experience conducting security design reviews, threat modelling, and security testing
- Excellent written and verbal communication skills
Benefits
- Remote-first global workforce + NY office
- Annual company offsite + team onsites
- Professional reimbursement program (facilitates industry conference attendance, certifications, and more)
- Medical, dental & vision coverage (US + some other countries)
- 401k retirement plan + company match (US only)
- Wellness stipend
- Home office set up / ergonomic equipment program
